
DEPARTMENT OF DEFENSE 
UNITED STATES CYBER COMMAND 

9800 SAVAGE ROAD, SUITE 6171 
FORT GEORGE G. MEADE. MARYUND 20755 


NOV 2 8 2018 


Michael Martelle 
The National Security Archive 
Gelman Library, Suite 701 
2130 H Street, N.W. 
Washington, D.C. 20037 


Dear Mr. Martelle, 

'rhank you for your September 9, 2018 Freedom of Information Act (FOIA) request for the 
briefing on the Joint Intelligence Operations Center given November 30, 2016. 

As the initial denial authority, 1 am partially denying portions of the document under 5 U.S.C. § 
552(b)(1). The denied portions include classified national security information under the criteria 
of Executive Order 13526 (labeled as (b)(1)). 

If you are not satisfied with our action on this request, you may file an administrative appeal 
within 90 calendar days from the date of this letter by U.S. mail or email. If you submit your 
appeal in writing, please address it to ODCMO, Director of Oversight and Compliance, 4800 
Mark Center Drive, ATTN: DPCLTD, FOIA Appeals, Mailbox #24, Alexandria VA 22350- 
1700. If you submit your appeal by email please send it to OSD.FOIA-APPEAL@mail.mil . 

All correspondence should reference U.S. Cyber Command case tracking number 19-R012. 

Additionally, you may contact the Office of Government Information Services (OGIS), which 
provides mediation services to help resolve disputes between FOIA requesters and Federal 
agencies. Contact information is 8601 Adelphi Road - OGIS, College Park, MD 20740-6001. 
OGIS may also be reached at Qtiis@nara.aov, 202-741-5770, and 1 -877-684-6448. 
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Targeting in the Digital ( NOT Industrial ) Age 


Targeting Processes must: 

1. Enable Cyber Operations against agile, dynamic, 
fleeting elements in the cyber domain; 

2. Facilitate an operational level Commander's timely, 
effective, and relevant decision-making; 

3. Add value to 1C understanding of our targets. 
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TIME FROM PLANNING to EXECUTION 


SEC R ET 



Cyberspace Operations 
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How do we get here? 



SIGINT Development 




Capability Development 


Intelligence Reporting 
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Two Major Considerations 


1. When do we need to use the Joint Targeting Cycle? 

• JTC adds necessary structure and rigor, but does not apply to 
all cyber operations. We should not use the JTC when we do 
not need it. 

2. When we do use it, use it smartly to achieve our goals 

• Targeting entities in the cyber domain requires a better 
application of targeting structures and processes. 
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Terminology and Processes 


(U) Target Development 

• Systematic examination of potential target systems to determine the necessary type and 
duration of action that must be exerted on each target to create an effect that is consistent 
with the commander's specific objectives 

• JP3-60 


( TS//S I //RELto USA, SIGINT Development 



( TS //S I //RELto USA, G &R) Network: Technical or Social/Functional? 

• pKiTSefrT^Ka) 


(U//F OUG ) Battle Damage Assessment 

• The estimate of damage or effect resulting from the application of lethal or nonlethal 
military force. Battle damage assessment is composed of physical damage assessment, 
change assessment, functional damage assessment, and target system assessment. 

• CJCSM 3162.01 

(U// FOUO ) Cyberspace Temporary Effects Assessment (C-TEAR) 

• USCYBERCOM Joint Target Intel Assessment Guidance for temp degradation or disruption 


Similar terminology from different disciplines adds to confusion 
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SECRET 


Additional Considerations 


• (U) JTC is optimized for lethal effects 

• Therefore JTC is sub-optimized for non lethal and temporary effects 

• (U// FOUO ) Integration of non-lethal fires and 
information-reiated capabilities is mostly a planning 
problem 

• Desire for deconfliction and synchronization does not dictate use of 
theJTC 

• (U) What is the cost/benefit anaiysis of using the JTC? 


S EC R ET 


28 Nov 2016 Version 1 i2T 


6 





UNCLASStP=IED//fOy© 



Joint Targeting Cycle (JP 3-60) 
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Joint Targeting Cycle 


(USCYBERCOM) 


(b)(1) Sec. 1.4(a) 
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i® Targeting at USCYBERCOM 


S£C R ET//REL TO USA, FV E Y 


(U) All lAW CJCS Directives. No such thing as a "cyber target" 


(U) USCYBERCOM Target List examples 

. Facility; W"®" ’''"” 


(S//REL) Individual: 


;b)C1)Sec. 1.4(a) 


(S//REL) Virtual: 


[b)(1) Sec. 1.4(a) 


(S//REL) Equipment: 


(b){1)Sec. 1.4(a) 


(S//R E L) Organization: 


[bKDSec, 1.4(a) 


• (U) For further discussion: Utility of a Network Target category 
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As of 10 August 2016 















(bKl) Sec. 1.4(a) 


(bKl)Sec. 1.4(a) 
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;b)(1}Sec. 1.4(a) 
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Target Development Relationships 
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Success in the "art" of Targeting requires 
informed application of taxonomy to target elements 


Taxonomy and the 'Art' of Targeting 


Taxonomy 


Adversary 


Target System 


Target System 
Component 


Target 


Examples 


JbKDSec, 1.7(e) 

1 


Target 

Element 
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Problem: Adversary VOIP Network 

(b)(1) Sec. 1.7(e) 
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Using Existing Guidance: 


(b)(1) Sec. 1.7(e) 
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As a Network Target: 


[b)(1)Sec. 1.7(e) 
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Takeaways and Recommendations 

• Don't use the JTC when you don't need it 

• Examine criteria for what constitutes "fires." When do OCO constitute fires? 

• Take EW problems (SOIs) out of JTC 

• Take MISO problems out of JTC 


JTC is useful insofar as it provides a synchronizing function at 
the operational level of war 

• Targets should be relevant to an operational level com mander 

|(bK1) Sec. 1.7(e) 


e.g. 


"Network Target" category would facilitate targeting in the cyber domain 

• Rendering a network as a set of fully developed and associated 
equipment; facility; virtual; and organization targets will never lead to 


effective operations. 

• Risk of unbounded network is mitigated by non-lethal nature of OCO 

• Automated system (i.e. MIDB) is not designed for cyber elements. Nor is 


it necessary. 

• Narrower category than broad; loosely defined "virtual" target category 


• Widely applicable to cyber operations 


• Joint Targeting Cycle is sound. We must apply it selectively 
and smartly. 
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USCC Targeting Way Ahead 
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• Re-open 'Network' entity discussion with Targeting Enterprise 

• Joint Staff Target Intelligence Working Groups 

• Semi-annual Military Targeting Committee 

• Incorporate C-ISIL lessons learned into doctrine 

• Joint Publication 3-60 - Joint Targeting 

• CJCSI 3162 - Battle Damage Assessment 

• Coordinate iterative process improvements within USCC 

• Cyberspace Temporary Effects Assessment Report (C-TEAR) 

• Work with J3 to improve Concept of Operation (CONOR) generation 

• What we can't change 

• External processes that add overhead to execution (e.g., RAPCO, CAUI) 

• PPD-20 update? 
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